windows kernelmode driver to inject dll into each and every process and perform systemwide function hooking
☆54Aug 28, 2022Updated 3 years ago
Alternatives and similar repositories for kptnhook
Users that are interested in kptnhook are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- kernel driver used to monitor the activity of BadlionAnticheat.sys by patching its IAT☆32Jul 9, 2021Updated 5 years ago
- C/C++ Runtime library for system file (Windows Kernel Driver) - Supports Microsoft STL☆194Updated this week
- A Windows API hooking library !☆32Aug 29, 2022Updated 3 years ago
- Experimental disassembler for x86 binaries virtualized by VMProtect 3☆96Aug 27, 2022Updated 3 years ago
- devirtualization vmprotect☆69Mar 11, 2023Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- c++ implementation of windows heavens gate☆70Feb 12, 2021Updated 5 years ago
- This is just a x64dbg script system support.☆46Jul 6, 2022Updated 4 years ago
- Lightweight WINAPI tracing with Pin☆26Aug 22, 2019Updated 6 years ago
- ☆26Sep 29, 2022Updated 3 years ago
- A simple x86_64 AMD-v hypervisor type-2 Programmed with C++, with soon to be added syscall hooks. [W.I.P]☆110Aug 3, 2023Updated 2 years ago
- Easy Anti PatchGuard☆219Apr 9, 2021Updated 5 years ago
- Application Verifier Dynamic Fault Injection☆42Jan 12, 2026Updated 6 months ago
- Using Microsoft Warbird to automatically unpack and execute encrypted shellcode in ClipSp.sys without triggering PatchGuard☆269Aug 31, 2022Updated 3 years ago
- Analyze patches in a process☆262Jul 28, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Basic utilities for executing, reading and writing 64-bit data in a 32-bit WoW64 process☆20Jul 8, 2022Updated 4 years ago
- A kernel mode Windows rootkit in development.☆47Dec 31, 2021Updated 4 years ago
- Injector with kernel power☆18Jan 2, 2021Updated 5 years ago
- ☆41Dec 21, 2022Updated 3 years ago
- ☆56Dec 21, 2022Updated 3 years ago
- Demonstrate calling a kernel function and handle process creation callback against HVCI☆85Dec 21, 2022Updated 3 years ago
- Universal x86/x64 VMProtect 2.0-3.X Import fixer☆31Dec 29, 2021Updated 4 years ago
- Anti-anti-debug: reset ThreadHideFromDebugger☆16Nov 25, 2021Updated 4 years ago
- Noninvasive debugging plugin for X64Dbg☆111Nov 21, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Demo to show how write ALPC Client & Server using native Ntdll.dll syscalls.☆21Jan 25, 2022Updated 4 years ago
- Monitor ETW events for Windows process mitigation policies, with stack traces☆30Oct 7, 2022Updated 3 years ago
- x64 PE-COFF virtualization driven obfuscation engine☆58Oct 14, 2022Updated 3 years ago
- Walks the Process' VAD list to grab the PTE's corresponding to a usermode virtual address, all to get the physical address☆23Nov 22, 2021Updated 4 years ago
- https://key08.com/index.php/2021/10/19/1375.html☆70May 11, 2022Updated 4 years ago
- A POC for Windows Extension Host hooking☆24Jul 13, 2019Updated 7 years ago
- IDA Plugin that fills in missing indirect CALL & JMP target information☆148Feb 15, 2026Updated 5 months ago
- ☆123May 23, 2020Updated 6 years ago
- A windows kernel driver to Block symbolic link exploit used for privilege escalation.☆15Jul 30, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆46Oct 7, 2018Updated 7 years ago
- A way to detect DBI frameworks, Debuggers and VMs.☆24Nov 17, 2020Updated 5 years ago
- Minidump loader for Binary Ninja☆16Sep 25, 2025Updated 10 months ago
- Helper script for Windows kernel debugging with IDA Pro on VMware + GDB stub (including PDB symbols)☆68Aug 11, 2023Updated 2 years ago
- A C++14/17 header-only Windows memory editing library with a focus on type safety and modern C++ style.☆13Jun 3, 2019Updated 7 years ago
- Driver and WinDBG scripts to dump information about all resources and lookaside lists☆67Apr 4, 2020Updated 6 years ago
- pcmonitor - windows kernel driver to monitor users activity(such as keyboard input, screenshot) and send encrypted reports to mobile appl…☆118Feb 5, 2014Updated 12 years ago